Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

UC SAN for Exchange 2010

Posted on 2011-03-02
6
Medium Priority
?
740 Views
Last Modified: 2012-05-11
Greetings Exchange people!

We're setting up an Exchange 2010 environment that consist of:

cas1.domain.local
cas2.domain.local
mailbox1.domain.local
mailbox2.domain.local


SAN fields I was thinking of:

webmail.domain.com
autodiscover.domain.com
cas1.domain.local
cas2.domain.local

1. Do I need to specify the FQDN to the mailbox servers in a SAN field?
2. I install the certificate on one CAS server, and export it to the other CAS. Correct?
3. Do I have to export the sertificate and install it on the mailbox servers?
4. Do I need the NETBIOS name to the CAS servers in a SAN field? If Yes, why?
5. Did I forget anything? :)
0
Comment
Question by:snusgubben
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
6 Comments
 
LVL 49

Accepted Solution

by:
Akhater earned 2000 total points
ID: 35018679
1. Do I need to specify the FQDN to the mailbox servers in a SAN field?

not at all

2.. I install the certificate on one CAS server, and export it to the other CAS. Correct?
Correct just export it with private key

3. Do I have to export the sertificate and install it on the mailbox servers?
No need

4. Do I need the NETBIOS name to the CAS servers in a SAN field? If Yes, why?
Nop not needed

5. Did I forget anything? :)

Yes you need the CAS array name if both cas1 and cas2 are in the same AD site
0
 
LVL 21

Author Comment

by:snusgubben
ID: 35019009
The two cas servers is in the same site and will be in an array.

If I call the CAS array for "cas.domain.local" (I assume I should use the internal domain?), do I need SAN fields for both CAS1.domain.local and CAS2.domain.local, or is it enough to use "CAS.domain.local"?

Thanks

0
 
LVL 49

Expert Comment

by:Akhater
ID: 35019093
cas.domain.local is enough
0
Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

 
LVL 21

Author Comment

by:snusgubben
ID: 35019427
Just to be 100% sure, it will be sufficient with:

webmail.domain.com
autodiscover.domain.com
cas.domain.local

?
0
 
LVL 49

Expert Comment

by:Akhater
ID: 35019523
yep perfect
0
 
LVL 21

Author Closing Comment

by:snusgubben
ID: 35019605
Thanks!
0

Featured Post

Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article will help to fix the below errors for MS Exchange Server 2013 I. Certificate error "name on the security certificate is invalid or does not match the name of the site" II. Out of Office not working III. Make Internal URLs and Externa…
How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
In this video we show how to create a Contact in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >> Contact ta…
In this video we show how to create a Resource Mailbox in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: Navigate to the Recipients >> Resources tab.: "Recipients" is our default selection …

661 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question